Vulnerabilities > Cisco > Firepower Threat Defense > High

DATE CVE VULNERABILITY TITLE RISK
2018-04-19 CVE-2018-0231 Out-of-bounds Write vulnerability in Cisco products
A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of the affected device, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-787
8.6
2018-04-19 CVE-2018-0230 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Security Appliances could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
8.6
2018-04-19 CVE-2018-0228 Improper Locking vulnerability in Cisco Adaptive Security Appliance Software
A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the CPU to increase upwards of 100% utilization, causing a denial of service (DoS) condition on an affected system.
network
low complexity
cisco CWE-667
8.6
2018-04-19 CVE-2018-0227 Improper Certificate Validation vulnerability in Cisco products
A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication feature for Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to establish an SSL VPN connection and bypass certain SSL certificate verification steps.
network
low complexity
cisco CWE-295
7.5
2017-05-22 CVE-2017-6632 Resource Exhaustion vulnerability in Cisco Firepower Threat Defense
A vulnerability in the logging configuration of Secure Sockets Layer (SSL) policies for Cisco FirePOWER System Software 5.3.0 through 6.2.2 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to high consumption of system resources.
network
low complexity
cisco CWE-400
7.5
2017-05-03 CVE-2017-6625 Unspecified vulnerability in Cisco Firepower Threat Defense
A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of Service" vulnerability in the access control policy of Cisco Firepower System Software could allow an authenticated, remote attacker to cause an affected system to stop inspecting and processing packets, resulting in a denial of service (DoS) condition.
network
low complexity
cisco
7.1